A high-severity flaw in RabbitMQ lets attackers steal OAuth secrets from the management interface without authentication.
Attackers used 3.7 million spoofed OAuth client IDs to enumerate Entra ID user accounts and map application ecosystems.
Two RabbitMQ access control flaws could leak OAuth secrets and expose cross-tenant queue metadata
Cybercriminals are using Microsoft's OAuth device authorization flow to steal authentication tokens through phishing campaigns that bypass traditional security tools.
Sign in to your account